This document discusses the integration of SELinux with OpenShift, focusing on the labeling system, type enforcement, and multi-category security (MCS). It outlines the various SELinux labels used by OpenShift and the issues regarding security, node separation, and network access. Additionally, it highlights the challenges of running containers securely under SELinux and the importance of using Linux namespaces for resource management.